Vulnerabilities > Creativeitem > Academy LMS > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-09-15 CVE-2023-4973 Cross-site Scripting vulnerability in Creativeitem Academy LMS 6.2
A vulnerability was found in Academy LMS 6.2 on Windows.
network
low complexity
creativeitem CWE-79
6.1
2023-08-04 CVE-2023-38964 Cross-site Scripting vulnerability in Creativeitem Academy LMS 6.0
Creative Item Academy LMS 6.0 was discovered to contain a cross-site scripting (XSS) vulnerability.
network
low complexity
creativeitem CWE-79
6.1
2023-08-03 CVE-2023-4119 Cross-site Scripting vulnerability in Creativeitem Academy LMS 6.0
A vulnerability has been found in Academy LMS 6.0 and classified as problematic.
network
low complexity
creativeitem CWE-79
6.1
2023-07-19 CVE-2023-3752 Cross-site Scripting vulnerability in Creativeitem Academy LMS 5.15
A vulnerability was found in Creativeitem Academy LMS 5.15.
network
low complexity
creativeitem CWE-79
6.1
2023-02-03 CVE-2022-47130 Cross-Site Request Forgery (CSRF) vulnerability in Creativeitem Academy LMS 4.3
A Cross-Site Request Forgery (CSRF) in Academy LMS before v5.10 allows a discount coupon to be arbitrarily created if an attacker with administrative privileges interacts on the CSRF page.
network
low complexity
creativeitem CWE-352
4.3
2023-02-03 CVE-2022-47131 Cross-site Scripting vulnerability in Creativeitem Academy LMS 4.3
A Cross-Site Request Forgery (CSRF) in Academy LMS before v5.10 allows an attacker to arbitrarily create a page.
network
low complexity
creativeitem CWE-79
4.8